CVE-2024-25062: libxml2 XML Reader UAF in validation state during entity expansion
CVE-2023-29469: NULL dereference in xmlDictComputeFastKey with empty dict strings
CVE-2021-3518 libxml2 use-after-free in xmlXIncludeCopyNode during recursive XInclude
CVE-2021-3518: Use-after-free in xmlXIncludeAddNode XInclude processing
CVE-2022-40304: libxml2 dict corruption via entity reference cycle (content[0]=0 on dict-owned pointer)
CVE-2022-40304 libxml2 dict corruption via entity reference cycles
CVE-2022-40304: Dictionary Corruption via Entity Reference Cycles in libxml2 v2.9.14
CVE-2022-40303: Integer overflow in libxml2 xmlParseCharData → xmlBufAdd with XML_PARSE_HUGE
CVE-2024-25062: use-after-free in libxml2 xmlTextReaderRead — missing BACKTRACK state guard on XInclude re-expansion
CVE-2024-25062 libxml2 use-after-free in xmlTextReaderValidateEntity
libxml2 CVE-2024-25062: Use-after-free in xmlTextReaderRead during DTD validation with XInclude
CVE-2021-3518: Use-after-free in libxml2 xmlXIncludeAddNode (xinclude.c)
CVE-2022-40304: libxml2 dict corruption via entity reference cycle (ent->content[0]=0 on dict-owned memory)
CVE-2022-40304: libxml2 dict corruption from entity reference cycles
CVE-2022-40304: Dict Corruption via Entity Reference Cycles in libxml2
CVE-2022-40303: Integer overflow in libxml2 xmlSAX2Text → heap buffer overflow on large XML text nodes
CVE-2022-40303: libxml2 integer overflow with XML_PARSE_HUGE in xmlParseEntityValue and friends
CVE-2022-40303: Integer overflow in libxml2 CDATA parsing buffer growth